PT-2023-25579 · Unknown · Meldekarten Generator

Quirinziessler

·

Publicado

2023-06-27

·

Atualizado

2023-07-06

·

CVE-2023-36463

CVSS v3.1

5.3

Média

VetorAV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Meldekarten generator versions prior to 1.0.0b1.1.2
Description The issue concerns the lack of proper sanitization of user input in text fields, making them susceptible to XSS attacks. This has been addressed in a commit, and there are no known workarounds for this issue.
Recommendations For versions prior to 1.0.0b1.1.2, upgrade to version 1.0.0b1.1.2 to resolve the issue.

Exploit

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2023-36463
GHSA-F2GP-85CR-VGJ7

Produtos afetados

Meldekarten Generator